[Freeipa-devel] [PATCH] Integrate the DNS LDAP back-end

Rob Crittenden rcritten at redhat.com
Wed May 27 14:04:50 UTC 2009


Martin Nagy wrote:
> New series. It's based on the current top of the tree. I removed the
> "recursion no" from named.conf, since right now it breaks the driver.
> Also some cosmetic changes, but otherwise the same..
> 
> Martin

Looks good. ack x4.

rob

> 
> On Tue, 12 May 2009 23:32:22 +0200, Martin Nagy <mnagy at redhat.com>
> wrote:
> 
>> Hi,
>> this patch series will integrate the LDAP driver into the FreeIPA
>> install script (better late than never..). To get the driver code:
>>
>> git clone git://github.com/mnagy/bind-dyndb-ldap.git
>>
>> There's a README file with instructions for building and installing.
>> The plug-in is available in F-11, but since getting updates there is
>> pretty hard, you'll be better off with the git tree and make install,
>> I won't be updating the package in F-11 very often, at least not for
>> now. Unfortunately, I found a bug when testing the driver with IPA
>> that will cause any read queries to be denied. I'll try to fix that
>> as soon as possible.
>>
>> You will also need the latest bind package either from the F-11 or
>> devel branch (at least version 9.6.1-0.3.b1). Or you can grab a patch
>> from http://github.com/mnagy/bind-dynamic_db/downloads
>>
>> For now the plug-in will bind anonymously and won't be able to update.
>> It could do that, but for now I would have to put the DS password to
>> the config file.. I don't expect that we want to be able to
>> dynamically update the initial zone, so hopefully this is ok for now.
>>
>> I tried to install freeipa with this patch on a clean VM and didn't
>> hit any problems (well, yeah, I did, but I fixed them before
>> submitting ;). Any questions and criticism is welcome. Thanks.
>>
>> Martin
>>
>> ------------------------------------------------------------------------
>>
>> _______________________________________________
>> Freeipa-devel mailing list
>> Freeipa-devel at redhat.com
>> https://www.redhat.com/mailman/listinfo/freeipa-devel

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3245 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20090527/73fed77d/attachment.bin>


More information about the Freeipa-devel mailing list